Technology Risk Assistant Manager
Boubyan Bank
Total years of experience :19 years, 10 Months
• Working across the technology department to analyse and better understand their risk profile
• Identifying, Analyzing and assessing the impact of technology risk on projects / demands and develop mitigation strategies
• Conducting detailed risk assessments.
• Evaluating risk levels and implications.
• Defining a risk and control methodology and framework to use in conducting risk assessments
• Proactively managing risks so that there are no major incidents, breaches, examples of non-compliance, or security controls weaknesses
• Reviewing current risk management policies and protocols.
• Establishing and running risk committees and working groups
• Delivering technology risk insight for the Board & Executive Committees, including data-driven risk reports
• Regularly engaging with internal & external stakeholders on the group's IT and cyber risk posture
• Driving effective implementation & communication of operational risk management policies & guidelines
• Providing IT and cyber risk management consulting to the business, technical & operations groups
• Observing and assessing IT and information security internal operations.
• Conducting extensive research and assessments to evaluate risk levels and develop action plans and solutions that reduce and control risks and liabilities.
• Preparing and presenting risk assessment reports and proposals.
• Establish and Implement the Data Quality Program.
• Establish and maintain a register of data quality issues, document issues as discovered or submitted by stakeholders and follow-up the status of issues through their life cycle.
• Defined the data standards and use it to profile the quality of business attributes in and across application systems
• Establish schedules for monitoring data quality and capturing the profile results for historical reporting.
• Report data quality status to all stakeholders, including Data Stewardship.
• Perform root cause analysis by reviewing business processes, software applications, database designs, Extract-Transform-Load programs, system-to- system data transfer programs, and historical profile results.
• Work closely with and through all lines of business towards enhancing business return on information assets through maintenance and improvement of data understanding and accessibility.
• Performing statistical tests on large datasets to determine data quality and integrity.
• Evaluating system performance and design, as well as its effect on data quality.
• Collaborating with database developers to improve data collection and storage processes.
• Running data queries to identify coding issues and data exceptions, as well as cleaning data.
• Gathering data from primary or secondary data sources to identify and interpret trends.
• Reporting data analysis findings to management to inform business decisions and prioritize information system needs.
• Documenting processes and maintaining data records.
• Adhering to best practices in data analysis and collection.
• Keeping abreast of developments and trends in data quality analysis.
• Conduct an audit assignment according to the management plan.
• Examine internal IT controls, evaluate the design and operational effectiveness, determine exposure to risk and develop remediation strategies.
• Plan internal audit procedures and Conduct efficient and effective IT audit procedures.
• Perform regular audit testing and provide recommendations and Create IT internal audit reports
• Plan, implement, monitor and upgrade security measures for the protection of the organization’s data, systems and networks.
• Review, evaluate and test application controls.
• Develop a strong understanding of business and system processes.
• Review and assess the projects according to the audit role and involvements in the project life cycle.
• Using data mining and analysis skills to provide and automated results that improve the audit performance.
• Building and maintaining our risk register that driven from the audit standards and aligned with the planed audit assignments.
• Customize and manage follow-up system for the audit observations.
• Maintain and administrate audit applications and servers like Teammate & ACL Tool.
• Provide recommendations and guidance on identified security and control risks.
• Identify weaknesses in the system and create action plan to prevent security breaches
• Provide recommendations and guidance on identified security and control risks.
• Analyzing a company's IT system and infrastructure.
• Diagnosing IT system problems, inefficiencies and weaknesses.
• Planning a timeline for completion of projects.
• Understanding a client's business needs.
• Implementing a technological solution to meet business needs.
• Analyzing and determining security threats.
• Providing advice on technology best practices.
• Collaborating with technical in-house team to ensure familiarity with technology.
• Monitoring the success of IT solution.
• Producing detailed reports on the efficacy of the technology.
• Follow-up current Kuwaiti passport system and work on the maintenance, development and supervision the system and system extensions of programs and special devices belong to the system.
• Provide technical support the current systems that overseen by a Kuwaiti passport group that belongs to management of personal computers department.
• Participated with e-Passport project team in the analysis and design process for the e-Passport project.
• Analyzing business operations and the business's computer systems and determining which software applications could improve efficiency.
• Making recommendations on whether to upgrade the existing systems or install new ones.
• Leading teams of IT specialists in the implementation and upgrading of network hardware and software.
• Monitoring the roll-out of new software applications to ensure there are no problems.
• Troubleshooting and resolving any problems with business application software.
• Creating and overseeing protocols and procedures for the use of any new software applications.
• Training employees on the use of any new software applications and maintaining a good work atmosphere.
• Managing local area networks, installing and maintaining routers, generating email addresses, and creating passwords and backups.
• Creating, executing, and maintaining company databases.
• Maintaining up-to-knowledge of the latest software developments.
• Maintain, upgrade and develop the company website.
• Maintain and customize Data Entry applications.
• Managing and monitoring network environment.
• Integrate company application with third party companies’ application
• Using scripting and web development languages, management tools, content creation tools, applications and digital media.
• Creating user controls and web server controls and directing or performing Website updates.
• Conferring with teams to resolve conflicts, prioritize needs, develop content criteria, or choose solutions.
• Determining user needs by analyzing technical requirements.
• Developing or validating test routines and schedules to ensure that test cases mimic external interfaces and address all browser and device types.
• Editing, writing, or designing Website content, and directing team members who produce content.
• Maintaining an understanding of the latest Web applications and programming practices through education, study, and participation in conferences, workshops, and groups.
• Identifying problems uncovered by customer feedback and testing, and correcting or referring problems to appropriate personnel for correction.
• Evaluating code to ensure it meets industry standards, is valid, is properly structured, and is compatible with browsers, devices, or operating systems.
• Back up files from Web sites to local directories for recovery.
• Host and manage published websites.
• Designing and developing Applications, for factories and companies like Accounting System, Warehouse System, Production System and Employee Management System to meet their needs
• Create application depend on the customer requirements and specifications using company’s methods.
• Integrate companies systems together to provide Enterprise system for the entire customer factories
• Creating and implementing the source code of new applications.
• Testing source code and debugging code.
• Evaluating existing applications and performing updates and modifications.
• Developing technical handbooks to represent the design and code of new applications.
Bachelor's degree